|
1631
|
7.3 |
HIGH
Network
|
gnu
|
glibc
|
The deprecated functions ns_printrrf, ns_printrr and fp_nquery in the GNU C Library version 2.2 and newer fail to enforce the caller-supplied buffer length, and can result in an out-of-bounds write w…
|
CWE-787
Out-of-bounds Write
|
CVE-2026-5435
|
2026-05-6 02:38 |
2026-04-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1632
|
7.8 |
HIGH
Local
|
kde
|
kcoreaddons
|
In KDE KCoreAddons before 6.25, KShell::quoteArgs is intended to safely quote arguments so that they can be passed to a shell command. This parsing does not adequately handle metacharacters, leading …
|
CWE-150
Improper Neutralization of Escape, Meta, or Control Sequences
|
CVE-2026-41526
|
2026-05-6 02:25 |
2026-04-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1633
|
2.6 |
LOW
Adjacent
|
-
|
-
|
A vulnerability was found in chatchat-space Langchain-Chatchat up to 0.3.1.3. The affected element is the function _get_file_id of the file libs/chatchat-server/chatchat/server/api_server/openai_rout…
|
CWE-310 CWE-330
Cryptographic Issues Use of Insufficiently Random Values
|
CVE-2026-7847
|
2026-05-6 02:17 |
2026-05-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1634
|
5.9 |
MEDIUM
Network
|
-
|
-
|
A flaw was found in Open vSwitch. When Open vSwitch is configured with a conntrack flow using FTP helpers over the userspace datapath, a remote attacker can send a specially crafted FTP stream with a…
|
CWE-120
Classic Buffer Overflow
|
CVE-2026-34956
|
2026-05-6 02:17 |
2026-05-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1635
|
2.6 |
LOW
Adjacent
|
-
|
-
|
A vulnerability has been found in chatchat-space Langchain-Chatchat up to 0.3.1.3. Impacted is the function files of the file libs/chatchat-server/chatchat/server/api_server/openai_routes.py of the c…
|
CWE-362 CWE-367
Race Condition Time-of-check Time-of-use (TOCTOU) Race Condition
|
CVE-2026-7846
|
2026-05-6 01:16 |
2026-05-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1636
|
2.6 |
LOW
Adjacent
|
-
|
-
|
A flaw has been found in chatchat-space Langchain-Chatchat up to 0.3.1.3. This issue affects the function PIL.Image.tobytes of the file libs/chatchat-server/chatchat/webui_pages/dialogue/dialogue.py …
|
CWE-327 CWE-328
Use of a Broken or Risky Cryptographic Algorithm Use of Weak Hash
|
CVE-2026-7845
|
2026-05-6 01:16 |
2026-05-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1637
|
6.3 |
MEDIUM
Adjacent
|
-
|
-
|
A vulnerability was detected in chatchat-space Langchain-Chatchat up to 0.3.1.3. This vulnerability affects the function files/list_files/retrieve_file/retrieve_file_content/delete_file of the file l…
|
CWE-287 CWE-306
Improper Authentication Missing Authentication for Critical Function
|
CVE-2026-7844
|
2026-05-6 01:16 |
2026-05-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1638
|
- |
|
-
|
-
|
Allocation of Resources Without Limits or Throttling vulnerability in phoenixframework phoenix allows a denial of service via the long-poll transport's NDJSON body handling.
In 'Elixir.Phoenix.Trans…
|
CWE-770
Allocation of Resources Without Limits or Throttling
|
CVE-2026-32689
|
2026-05-6 01:16 |
2026-05-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1639
|
9.8 |
CRITICAL
Network
|
-
|
-
|
Buffer Overflow vulnerability exists in Assimp versions up to 6.0.2 in the FBX Importer. The vulnerability occurs in aiMaterial::AddBinaryProperty, where a property key string from a crafted FBX file…
|
CWE-122
Heap-based Buffer Overflow
|
CVE-2025-70067
|
2026-05-6 01:16 |
2026-05-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1640
|
4.9 |
MEDIUM
Network
|
sonicwall
|
sonicos
|
A post-authentication Stack-based Buffer Overflow vulnerabilities in SonicOS allows a remote attacker to crash a firewall.
|
CWE-121
Stack-based Buffer Overflow
|
CVE-2026-0206
|
2026-05-6 01:12 |
2026-04-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|